Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-49921

Опубликовано: 22 окт. 2025
Источник: nvd
CVSS3: 7.3
EPSS Низкий

Описание

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in CrocoBlock JetReviews jet-reviews allows PHP Local File Inclusion.This issue affects JetReviews: from n/a through <= 3.0.0.

EPSS

Процентиль: 36%
0.00149
Низкий

7.3 High

CVSS3

Дефекты

CWE-98

Связанные уязвимости

CVSS3: 7.3
github
4 месяца назад

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in CrocoBlock JetReviews jet-reviews allows PHP Local File Inclusion.This issue affects JetReviews: from n/a through <= 3.0.0.

EPSS

Процентиль: 36%
0.00149
Низкий

7.3 High

CVSS3

Дефекты

CWE-98